Tuesday, January 3, 2017

IBM Security Bulletin: BigFix Platform could allow an attacker on the local network to crash the BES and relay servers

A memory exhaustion vulnerability allows spraying BES Root Server and BES Relay memory with attacker controlled data

CVE(s): CVE-2016-6085

Affected product(s) and affected version(s):

BigFix Platform 9.0

BigFix Platform 9.1

BigFix Platform 9.2

BigFix Platform 9.5

Refer to the following reference URLs for remediation and additional vulnerability details:
Source Bulletin: http://ift.tt/2iLjXJJ
X-Force Database: http://ift.tt/2hNvTgQ



from IBM Product Security Incident Response Team http://ift.tt/2iLeHFD

No comments:

Post a Comment

Note: Only a member of this blog may post a comment.